Metrics
Affected Vendors & Products
Fri, 29 Aug 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 28 Aug 2025 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A security vulnerability has been detected in ZrLog up to 3.1.5. This vulnerability affects unknown code of the file /api/admin/template/config of the component Theme Configuration Form. Such manipulation of the argument footerLink leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | ZrLog Theme Configuration Form config cross site scripting | |
Weaknesses | CWE-79 CWE-94 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-08-29T13:32:12.303Z
Reserved: 2025-08-28T14:50:10.688Z
Link: CVE-2025-9591

Updated: 2025-08-29T13:32:04.843Z

Status : Awaiting Analysis
Published: 2025-08-28T22:15:33.500
Modified: 2025-08-29T16:24:29.730
Link: CVE-2025-9591

No data.

No data.